CVE-2024-27942: High severity siemens ruggedcom crossbow vulnerability
Published May 14, 2024
·Updated
A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.5). The affected systems allow any unauthenticated client to disconnect any active user from the server. An attacker could use this vulnerability to prevent any user to perform actions in the system, causing a denial of service situation.
Affected Software
2 affected components
RUGGEDCOM CROSSBOW<5.5
Siemens Ruggedcom Crossbow<5.5
Event History
May 14, 2024
CVE Published
via MITRE·10:02 AM
Data Sourced
via MITRE·10:02 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-27942?
CVE-2024-27942 is classified as a denial-of-service vulnerability.
2
How do I fix CVE-2024-27942?
To mitigate CVE-2024-27942, upgrade to RUGGEDCOM CROSSBOW version 5.5 or later.
3
What type of systems are affected by CVE-2024-27942?
CVE-2024-27942 affects all versions of RUGGEDCOM CROSSBOW prior to version 5.5.
4
What actions can an attacker perform with CVE-2024-27942?
An attacker can disconnect active users from the RUGGEDCOM CROSSBOW server, causing service disruption.
5
Who is the vendor for CVE-2024-27942?
The vendor for CVE-2024-27942 is Siemens.